๐ณ๐ฑ
thedreamer.nl
2026-09-03 23:13:58
(1 hour ago)
34.105.223.147 - - [04/Sep/2026:01:12:23 +0200] "GET /.git/config HTTP/1.1" 200 29044 "-" "crusader- ...
show more
34.105.223.147 - - [04/Sep/2026:01:12:23 +0200] "GET /.git/config HTTP/1.1" 200 29044 "-" "crusader-worker/1.0" "GB" "City of London" "51.51640" "-0.09300"
34.105.223.147 - - [04/Sep/2026:01:12:23 +0200] "GET /backend/.git/config HTTP/1.1" 200 29044 "-" "crusader-worker/1.0" "GB" "City of London" "51.51640" "-0.09300"
34.105.223.147 - - [04/Sep/2026:01:12:23 +0200] "GET /html/.git/config HTTP/1.1" 200 29044 "-" "crusader-worker/1.0" "GB" "City of London" "51.51640" "-0.09300"
34.105.223.147 - - [04/Sep/2026:01:12:23 +0200] "GET /src/.git/config HTTP/1.1" 200 29044 "-" "crusader-worker/1.0" "GB" "City of London" "51.51640" "-0.09300"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-03 16:34:25
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-03 16:11:31
(8 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐ซ๐ท
geot
2026-09-03 13:23:12
(11 hours ago)
GET /www/.git/config HTTP/1.1
GET /wordpress/.git/config HTTP/1.1
GET /html/.git/config HTTP/1.1
GET ...
show more
GET /www/.git/config HTTP/1.1
GET /wordpress/.git/config HTTP/1.1
GET /html/.git/config HTTP/1.1
GET /.git/config HTTP/1.1
GET /backend/.git/config HTTP/1.1
GET /app/.git/config HTTP/1.1
GET /public/.git/config HTTP/1.1
GET /api/.git/config HTTP/1.1
GET /site/.git/config HTTP/1.1
GET /src/.git/config HTTP/1.1
GET /htdocs/.git/config HTTP/1.1
GET /var/www/.git/config HTTP/1.1
show less
Hacking
Bad Web Bot
Web App Attack
๐จ๐ฟ
SystemAdmin
2026-09-03 13:19:11
(11 hours ago)
Doing bad things...
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-03 09:35:26
(14 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.105.223.147 (GB/United Kingdom/1 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.105.223.147 (GB/United Kingdom/147.223.105.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-03 07:25:41
(17 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
YF
2026-09-03 05:00:11
(19 hours ago)
Git config exposure probe
Web App Attack
๐ฉ๐ช
pscriptos
2026-09-03 04:47:02
(19 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 03:51:18
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 23:51:14.142942 2026] [security2:error] [pid 11530:tid 11530] [client 34.105.223.147:56696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jiggaboojones.com"] [uri "/src/.git/config"] [unique_id "apjusnDtVDIzI_4S_cRURwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 02:38:50
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:38:44.729512 2026] [security2:error] [pid 28301:tid 28301] [client 34.105.223.147:45416] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kerrywood.com"] [uri "/www/.git/config"] [unique_id "apjdtJyY_egAkKB2zCtfAQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
DyhnenTv
2026-09-03 02:08:35
(22 hours ago)
CrowdSec webserver: crowdsecurity/http-sensitive-files
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-03 01:51:07
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:51:02.200382 2026] [security2:error] [pid 6487:tid 6487] [client 34.105.223.147:43708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.panacean.us"] [uri "/src/.git/config"] [unique_id "apjShoaMO-LZO6DZsXC5fAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 01:33:35
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.105.223.147 (147.223.105.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:33:31.407462 2026] [security2:error] [pid 1905:tid 1905] [client 34.105.223.147:39770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "automatebi.whitmarshinc.com"] [uri "/site/.git/config"] [unique_id "apjOa_OMtB4gYvnKLEtgnQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
seal
2026-09-03 01:18:12
(23 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force